URLhaus Database

You are currently viewing the URLhaus database entry for http://mhkdhotbot80.myvnc.com/cig_mhkd.dat which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:234218
URL: http://mhkdhotbot80.myvnc.com/cig_mhkd.dat
URL Status:Offline
Host: mhkdhotbot80.myvnc.com
Date added:2019-09-22 10:55:47 UTC
Last online:2021-04-27 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-09-22 10:56:02 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 year, 7 month, 13 days, 7 hours, 13 minutes Bad (down since 2021-04-27 18:09:50 UTC)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-09n/aexe 633086ab5e6f8a75d20a4dae2193c8b5e233bb8dd83a3cceb42dc22b20a5d3b0n/a Heodo
2020-08-23n/aexe 4f86e4ff6b4fe41f51de48e5a758cdf75d3207ea10c84663ba2119c87306e8b1n/a 
2020-07-07n/aexe 1b8234f0b5a61ee2b0ff5ceb39f3e181edf4b06230fe977b5f31e4b94b29e512n/a 
2020-04-11n/aexe 11740a755e78512f2b0f130e829ee9a158652cf8b3d6610dcef525457f2e492bn/a 
2020-04-03n/aexe 716216084a19a0d174226c58fd48a01047207952f1d04f4328d1a74e9abac693Virustotal results 16.67% Heodo
2020-03-17n/aexe 4f99350031263f00a4a84ebe22c49579613038374269166d281eaa95cde297c3Virustotal results 16.67% 
2020-03-16n/aexe 12f3dc031f4336bca157c931e48d93ea93b715b03e1aa7e639947230d6208493Virustotal results 11.27% 
2020-03-06n/aexe 9fd370a06ad9754f98b541f358c2e796b5b5ecef46d9b239964068c8e74c27a2Virustotal results 15.94% 
2020-02-09n/aexe 501d9ea1e548fe04b1d28a87256679007fae2e77cb493d45be25706c53f81da2n/a 
2020-02-09n/aexe d0f565a3e5c35c2b594a45199cd77b160bfd37a29631446014fafbe146659411Virustotal results 15.94% 
2020-02-08n/aexe 6a674aaf07ecffce40d3ecad0b30fc65a7710a0534a0a78bc86be6dc8d0d57f5Virustotal results 16.67% 
2020-02-07n/aexe 13870ef190925063bf7c11309b51f17b47f7f1d4e1c2e0cb3a9bd7ff977ad7eaVirustotal results 17.91% 
2020-02-06n/aexe a5569f61a85c973b1ae5a6f8289755191d6250ca6108b3bce0ce759342275d4aVirustotal results 17.91% 
2020-02-02n/aexe 3267b9ea45e58e249fdc6d5275b760a14d830862debc70028f480d446561cf61Virustotal results 16.90% 
2020-01-10n/aexe 08e9bf83fd8489ebd9a42e19ce7244592a2a1016e80c0b5d3cc7f2306ee3350eVirustotal results 17.14% 
2020-01-03n/aexe e5de9a44d3124bd49a6bc1964907d27ce16132a1f759b01b877af9eb02d6cda4Virustotal results 17.14% 
2019-12-25n/aexe 8b8e0dfd16587d0fe087b348dbdab81c2a4105580072ba9c51eccba1cf838e20n/a 
2019-12-16n/aexe 918b2d9e349c39538693a5834da18335c0b24c4366400baa77c3782c8fa6a3dbn/a 
2019-12-13n/aexe 8e1297fcfd77235e204a3665df44fd5dd5b464a972dd8f856916937ed1607152Virustotal results 15.15% 
2019-12-03n/aexe 237e247a480d61dd7da42260781aa9c9d9d672a670aa850f6b150603eac0b97an/a 
2019-11-29n/aexe 5eb663d59bb0be5bc18a30fb472a4d247730bf417bde22a6cb6382791de57692n/a 
2019-11-28n/aexe acdeb369cdc33dfaa2a63cd228fef32cefdae7d1efb4dfc989671f50d2bb314bVirustotal results 16.90% 
2019-11-24n/aexe d3b860c799d8ddd20c6c066165129902bff32be038224a76a16245a666bc9973Virustotal results 21.43% 
2019-11-15n/aexe daf81cfcca8e52797a01334d9d948429b7e1ebfb8dbb6df965aecec25a946fffVirustotal results 18.31% 
2019-11-06n/aexe 5227cd35a46a9effc896466ced309d515c187f147fd5037b0671f9786d0d7723Virustotal results 19.70% 
2019-11-02n/aexe 311dca44685527515bfc01d6c9a1e6b46b57c41fee56f1ddd5cea11328ff1e82Virustotal results 16.92% 
2019-11-01n/aexe 2a18b7dcdc9ba0225ee61320614aea801b157284bbce406b0e01579e0b9e45c2n/a 
2019-09-22n/aexe 29e0374a105fea9130acb3690ca69fc53e1c16cabae72013f84ba9781be9f27eVirustotal results 73.91%